CVE-2007-5347

Description

Microsoft Internet Explorer 5.01 through 7 allows remote attackers to execute arbitrary code via unexpected method calls to HTML objects, aka DHTML Object Memory Corruption Vulnerability.

Risk Information

Base Score
9.6
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H/E:F/RL:O/RC:C
EPSS Score
Exploitation Probability
46.102

Associated Vulnerability

VulnerabilityOS Platform
Cumulative Security Update for Internet Explorer 5.01 Service Pack 4 (KB942615)Windows
Cumulative Security Update for Internet Explorer 6 SP1 (KB942615)Windows
Cumulative Security Update for Internet Explorer for Windows XP (KB942615)Windows
Cumulative Security Update for Internet Explorer for Windows Server 2003 (KB942615) x86 based systemsWindows
Cumulative Security Update for Internet Explorer for Windows Server 2003 (KB942615) x86 based systems for SP2Windows
Cumulative Security Update for Internet Explorer 7 for Windows XP (KB942615)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 (KB942615)Windows
Cumulative Security Update for Internet Explorer 7 in Windows Vista (KB942615)Windows
Cumulative Security Update for Internet Explorer for Windows XP x64 Edition (KB942615)Windows
Cumulative Security Update for Internet Explorer 7 in Windows Vista x64 Edition (KB942615)Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234